Integer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QuickTime movie with a User Data Atom (UDTA) with an Atom size field with a large value.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.586
EPSS Ranking 98.1%